1

Edr Engineer Jobs in Milwaukee, WI (NOW HIRING)

Sr Threat Hunt Engineer

Milwaukee, WI

$112K - $154K/yr

Deep hands-on experience running proactive and signal-driven hunts across SIEM, EDR, network, cloud ... Detection Engineering- Observes and correlates activity across platforms and systems to identify ...

Be Seen First

Senior Systems Engineer MSP

Brookfield, WI · On-site

$80K - $110K/yr (+ commission)

The Role As our Senior Systems Engineer, you're the senior escalation point and the technical lead ... Lead security delivery through Guardion: endpoint protection, EDR, SIEM, MDR and XDR, and ...

Cybersecurity Engineer

Milwaukee, WI · On-site

$80 - $100/hr

Cybersecurity Engineer# ## *The Company*Zurn Elkay Water Solutions Corporation is a thriving ... Implement data security measures, including Microsoft Defender, EDR platforms, and MDR enhancements*

... EDR, and related telemetry). * In rotation with other team members, support 24/7 Security ... Support the SOC Engineer and other team members to refine prevention/detection/response ...

Senior SOC Analyst

Milwaukee, WI · On-site

$94K - $123K/yr

Our globally distributed engineering teams focus on adaptable technology and open architecture to ... SIEM, EDR, NDR, and cloud platforms, escalating to the SOC Lead as appropriate. • Respond to ...

next page

Showing results 1-20

Edr Engineer information

See Milwaukee, WI salary details

$43.8K

$121.5K

$178.8K

How much do edr engineer jobs pay per year?

As of Sep 8, 2026, the average yearly pay for edr engineer in Milwaukee, WI is $121,464.00, according to ZipRecruiter salary data. Most workers in this role earn between $100,000.00 and $138,400.00 per year, depending on experience, location, and employer.

What is an EDR engineer?

EDR Engineers are cybersecurity professionals who specialize in implementing, managing, and optimizing Endpoint Detection and Response (EDR) solutions for organizations. Their main responsibilities include monitoring endpoints for suspicious activities, investigating security incidents, and responding to threats in real-time. EDR Engineers work closely with security teams to ensure robust protection against malware, ransomware, and other cyber threats by leveraging advanced detection and automated response tools. They also contribute to improving security policies and practices based on threat intelligence gathered from endpoints.

What are the key skills and qualifications needed to thrive as an EDR engineer, and why are they important?

To thrive as an EDR Engineer, you need a solid background in cybersecurity, threat detection, incident response, and typically a degree in computer science or a related field. Familiarity with endpoint detection and response (EDR) tools such as CrowdStrike, SentinelOne, or Carbon Black, along with certifications like CEH or CISSP, is highly valuable. Strong analytical thinking, problem-solving abilities, and effective communication skills help EDR Engineers collaborate across teams and respond swiftly to threats. These skills and qualifications are essential to proactively identify, investigate, and mitigate security incidents, ensuring the organization's digital assets remain protected.

What are some common challenges EDR engineers face when integrating endpoint detection and response solutions across diverse IT environments?

EDR Engineers often encounter challenges when deploying and managing endpoint detection and response solutions in organizations with a mix of legacy systems, various operating systems, and remote or hybrid workforces. Compatibility issues, ensuring consistent policy enforcement, and maintaining real-time visibility across all endpoints can be complex tasks. Collaboration with IT, security teams, and end-users is essential to troubleshoot deployment issues, minimize false positives, and optimize system performance. Staying up-to-date with evolving threats and regularly tuning the EDR solution are also key aspects of the role.

What is the difference between Edr Engineer vs Edr Technician?

AspectEdr EngineerEdr Technician
CredentialsBachelor's degree in electrical, electronics, or related engineering fields; certifications like Cisco or CompTIA are commonTechnical diploma or associate degree; relevant certifications may include Cisco or CompTIA
Work EnvironmentDesign, develop, and troubleshoot EDR systems; often involved in project planning and system integrationInstall, maintain, and repair EDR hardware and software; hands-on technical support
Employer & Industry UsageUsed by network security firms, telecom companies, and large enterprises for security and data recoveryEmployed in similar settings for operational support and system maintenance

In summary, Edr Engineers focus on designing and developing EDR systems, requiring higher-level engineering skills and credentials. Edr Technicians handle installation and maintenance, with more hands-on technical tasks. Both roles are essential in the cybersecurity and data recovery industry, but they differ in responsibilities and required qualifications.

What job categories do people searching Edr Engineer jobs in Milwaukee, WI look for?

The top searched job categories for Edr Engineer jobs in Milwaukee, WI are:

$112K - $154K/yr

Full-time

Re-posted 23 days ago


Key responsibilities

  • Maintain and mature the operational hunt framework used across Cyber Defense.

  • Design, build, and maintain integrations and automation across the hunt lifecycle, including tools such as SIEM, EDR, threat intelligence platforms, and reporting.

  • Execute proactive and signal-driven hunts, support the hunt community, and translate hunt findings into detections and intelligence.


Northwestern Mutual rating

8.0

Company rating: 8.0 out of 10

Based on 76 frontline employees who took The Breakroom Quiz

173rd of 315 rated insurance


Job description

About the Job:

The Senior Threat Hunt Engineer is an advanced and highly trusted role supporting the enterprise cybersecurity program. As a member of Northwestern Mutual's Threat Hunting Program under theThreat Intelligenceumbrella, the Senior Threat Hunt Engineer is primarily responsible for developing andmaintainingthe operational and technical foundation of the program including automation, tooling integration, detection handoff pipelines, and AI-assisted hunt workflows. Grounded in threat intelligence and hunt experience, the Senior Threat Hunt Engineer also executes proactive and signal-driven hunts across endpoint, network, cloud, and identity telemetry, translating findings into durable detections and institutional knowledge.

This role works closely with internal technical teams - including Threat Intelligence, Detection & Response, Detection Engineering, Adversarial Simulation, Purple Team, Incident Command, and Governance, Risk & Compliance - and with peer organizations, industry-sharing groups, and law enforcement affiliations whereappropriate. The Senior Threat Hunt Engineer supports the hunt community across Cyber Defense, contributes engineering rigor to hunt artifacts, and ensures repeatable, version-controlled hunt processes as the program matures from manual to increasingly automated operations.

What You'll Do:

  • Maintain and mature the operational hunt frameworkused across Cyber Defense. Build, document, and refine the templates, integrations, andstandardshunters from multiple teams follow.
  • Design, build, andmaintainintegrations and automationacross the hunt lifecycle - spanning work-tracking, collaboration, ticketing, knowledge management, SIEM, EDR, threat intelligence platforms, and reporting.
  • Execute hunts and support the hunt community across teams. Perform proactive and signal-driven hunts, respond to hunt questions from hunters across Cyber Defense, and partner with Threat Intelligence to translate hunt-informed analysis into actionable intelligence. Synthesize hunt outcomes into cross-hunt correlations, control gap identification, and inputs to future hunts and detections.
  • Partner with detection engineering to translate hunt findingsinto production rules and analytics. Contributedetectioncandidates through the established handoff pipeline.
  • Consume and apply threat intelligence to hunt activity. Track adversary and threat cluster TTPs relevant to Northwestern Mutual, prioritize what matters, and translate intel into hunt hypotheses.
  • Mentor analysts and junior hunters. Pair on investigations, lead technical deep-dives, and grow the hunt capability across teams.
  • Report on program outcomes. Communicate findings to internal stakeholders - what was found, what wascontained, where detection coverage gaps exist, and what was changed as a result.
  • Evaluate, integrate, andmaintainsecurity toolingused by the Threat Hunting Program, including threat intelligence platforms, enrichment services, and hunt-supporting analytical tools.
  • Evaluate and integrate AIto accelerate hunt workflows, including hypothesis drafting, MITRE ATT&CK mapping suggestion, query generation, and summarization, withappropriate humanreview and tracking.
  • Researchcurrent and emerging cyber threatsfacing the business and industrysector.
  • Track threat actors, threat clusters, and associated malware families relevant to Northwestern Mutual and the financial services sector.
  • Document threats into contextual reportsoutlining severity, urgency, and impact, and ensure they can be understood by both leadership and technical teams.
  • Serve as a trusted advisortomaintaincredibility with business unit leadership and technical teams.
  • Actively inform andengage in security projectsacross the business to disrupt active or potential threats.
  • Participate incollaborative threat analysis discussionswith internal and external trusted entities.
  • Perform other dutiesas assigned.

What You'll Bring to the Role:

  • A minimum of 5-10 years in threat intelligence, threat hunting, incident response, or detection engineering, with meaningful experience across both threat intelligence and threat hunting disciplines.
  • Bachelor's degree in computer science, cybersecurity, engineering, ora relatedfield (or equivalent experience).
  • Relevant certifications such as GCTI, GCIH, GCFA, GCIA, GCDA, OSCP, CEH, or CISSP are a plus. Cloud-focused security certifications (e.g., AWS Security Specialty, GCP Professional Cloud Security Engineer) are also valued.
  • Deep hands-on experience running proactive and signal-driven hunts across SIEM, EDR, network, cloud, and identity telemetry in enterprise environments.
  • Strong scripting and automation skills; Pythonrequired, withadditionalexperience in PowerShell, Bash, or equivalenta plus.
  • Deep hands-on experience with enterprise SIEM search languages, including advanced query development, dashboard building, saved searches, alerting, and query optimization at enterprise scale.
  • Hands-on experience developing and consuming REST APIs across security tooling - including work-tracking, collaboration, ticketing, SIEM, EDR, and threat intelligence platforms.
  • Demonstrated experience building event-driven automation using webhooks or similar integration patterns.
  • Experience building, integrating, andmaintainingsecurity tooling and workflows at enterprise scale.
  • Working knowledge of version control workflows, branching strategies, and code review practices.
  • Ability to write clear technical documentation forautomationand integrations, including runbooks for maintenance and troubleshooting.
  • Ability to communicate complex findings clearly to both technical and leadership audiences.
  • Advanced analytical reasoning skills.
  • Applicable knowledge of adversary tactics, techniques, and procedures (TTPs), the MITRE ATT&CK framework, the unified kill chain, and open-source intelligence (OSINT).
  • Hands-on experience with SIEM, intrusion detection/prevention systems, threat intelligence platforms, and security orchestration and automation platforms.
  • Ability to analyze host, network, cloud, and identity telemetry; strong understanding of operating system internals; working knowledge of malware behavior, vulnerabilities, and exploitation techniques.
  • Experience with incident collaboration, adversary tooling, and threat-informed defensemethodology.
  • Capable of working with diverse teams across Cyber Defense; comfortable operating in a cross-team enablement role rather than a single-team hunt queue.
  • Demonstrated understanding of network, host, cloud, and identity cybersecurity solutions.
  • Ability tomaintaina high levelof integrity, trustworthiness, and confidence, with the highest level of professionalism.
  • Strong project management, multitasking, and organizational skills with minimum guidance.
  • Ability to preserve credibility with the team and external constituents through sustained industry knowledge.
  • Self-starter requiring minimal supervision.

What Sets you apart

  • Threat Awareness-Uses knowledge of common and emerging security threats to identify potential risks and understand the protections needed against them.

  • Detection Engineering-Observes and correlates activity across platforms and systems to identify risks, threats, and suspicious behavior, using intelligence from multiple security sources to generate alerts.

  • Triage-Investigates technical problems through a systematic, hypothesis-driven approach to understand the context, determine the cause, and identify an appropriate solution.

  • Scripting & Integration-Applies scripting knowledge to automate tasks and integrate systems that support areas such as records maintenance, inventory management, process analytics, and administration.

  • Security Logging & Monitoring-Records and collects events across organizational systems and networks using appropriate collection strategies and established priorities.

  • Attack Method Countermeasures-Creates controls that reduce threats and respond to automated or manual attacks by preventing, eliminating, or minimizing potential damage.

  • Cross Functional Partnering & Planning-Facilitates collaboration, communication, coordination, and planning among teams with different areas of expertise to achieve shared goals.

#LI-Remote

Compensation Range:

Pay Range - Start:

$118,960.00

Pay Range - End:

$178,440.00

Geographic Specific Pay Structure:

Structure 110:

Structure 115:

We believe in fairness and transparency. It's why we share the salary range for most of our roles. However, final salaries are based on a number of factors, including the skills and experience of the candidate; the current market; location of the candidate; and other factors uncovered in the hiring process. The standard pay structure is listed but if you're living in California, New York City or other eligible location, geographic specific pay structures, compensation and benefits could be applicable, click here to learn more.

Job Posting End Date:


The timeline for this job posting may be shortened or extended based on organizational needs.


Grow your career with a best-in-class company that puts our clients' interests at the center of all we do. Get started now!


Northwestern Mutual is an equal opportunity employer that welcomes talented individuals of all backgrounds. We are committed to creating and maintaining an environment in which each employee can contribute creative ideas, seek challenges, assume leadership and continue to focus on meeting and exceeding business and personal objectives.


What Northwestern Mutual employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Northwestern Mutual logo

About Northwestern Mutual

Sourced by ZipRecruiter

Northwestern Mutual has been helping families and businesses achieve financial security for over 160 years through a distinctive planning approach that integrates risk management with wealth accumulation, preservation, and distribution. With more than $290 billion in assets, $30 billion in revenues and more than $1.9 trillion worth of life insurance protection in force, Northwestern Mutual delivers financial security to more than 4.6 million clients. People are the power behind Northwestern Mutual, and diversity makes us better. We are committed to reflecting and serving the marketplace. We do so by attracting and improving the engagement of those who bring their outstanding perspectives, ideas, and beliefs.

Industry

Finance and insurance

Company size

5,001 - 10,000 Employees

Headquarters location

Milwaukee, WI, US